change_project_check.js 5.9 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122
  1. 'use strict';
  2. /**
  3. *
  4. *
  5. * @author Ellisran
  6. * @date 2020/10/15
  7. * @version
  8. */
  9. const status = require('../const/audit').changeProject.status;
  10. const _ = require('lodash');
  11. module.exports = options => {
  12. /**
  13. * 标段校验 中间件
  14. * 1. 读取标段数据(包括属性)
  15. * 2. 检验用户是否可见标段(不校验具体权限)
  16. *
  17. * @param {function} next - 中间件继续执行的方法
  18. * @return {void}
  19. */
  20. return function* changeProjectCheck(next) {
  21. try {
  22. // 获取revise
  23. if (!this.session.sessionProject.page_show.openChangeProject) {
  24. throw '该功能已关闭';
  25. }
  26. const cpid = this.params.cpid || this.request.body.cpid;
  27. if (!cpid) {
  28. throw '您访问的变更立项不存在';
  29. }
  30. const change = yield this.service.changeProject.getDataById(cpid);
  31. // 读取原报、审核人数据
  32. change.auditors = yield this.service.changeProjectAudit.getAuditors(change.id, change.times);
  33. change.curAuditor = yield this.service.changeProjectAudit.getCurAuditor(change.id, change.times);
  34. change.xsAuditors = yield this.service.changeProjectXsAudit.getAuditList(change.id);
  35. if (!change) throw '变更令数据有误';
  36. // 权限相关
  37. // todo 校验权限 (标段参与人、分享)
  38. const accountId = this.session.sessionUser.accountId,
  39. auditorIds = _.map(change.auditors, 'aid'),
  40. xsAuditorIds = _.map(change.xsAuditors, 'aid'),
  41. shareIds = [];
  42. if (accountId === change.uid) { // 原报
  43. // if (change.curAuditor) {
  44. // change.readOnly = change.status === status.checking && change.curAuditor.user_id === accountId;
  45. // } else {
  46. // change.readOnly = change.status !== status.uncheck && change.status !== status.back;
  47. // }
  48. change.curTimes = change.times;
  49. if (change.status === status.uncheck || change.status === status.back || change.status === status.checkNo) {
  50. change.curOrder = 0;
  51. } else if (change.status === status.checked) {
  52. change.curOrder = _.max(_.map(change.auditors, 'order'));
  53. } else {
  54. change.curOrder = change.curAuditor.aid === accountId ? change.curAuditor.order : change.curAuditor.order - 1;
  55. }
  56. change.filePermission = true;
  57. } else if (this.tender.isTourist) {
  58. change.curTimes = change.times;
  59. if (change.status === status.uncheck || change.status === status.back || change.status === status.checkNo) {
  60. change.curOrder = 0;
  61. } else if (change.status === status.checked) {
  62. change.curOrder = _.max(_.map(change.auditors, 'order'));
  63. } else {
  64. change.curOrder = change.curAuditor.order;
  65. }
  66. change.filePermission = this.tender.touristPermission.file || auditorIds.indexOf(accountId) !== -1;
  67. } else if (auditorIds.indexOf(accountId) !== -1 || xsAuditorIds.indexOf(accountId) !== -1) { // 审批人或者协审人
  68. if (change.status === status.uncheck) {
  69. throw '您无权查看该数据';
  70. }
  71. // change.readOnly = change.status !== status.checking || accountId !== change.curAuditor.aid;
  72. change.curTimes = change.status === status.back ? change.times - 1 : change.times;
  73. if (change.status === status.checked) {
  74. change.curOrder = _.max(_.map(change.auditors, 'order'));
  75. } else if (change.status === status.back) {
  76. const audit = this.service.changeProjectAudit.getDataByCondition({
  77. cpid: change.id, times: change.times, status: status.back,
  78. });
  79. change.curOrder = audit.order;
  80. } else if (change.status === status.checkNo) {
  81. change.curOrder = 0;
  82. } else {
  83. change.curOrder = accountId === change.curAuditor.aid ? change.curAuditor.order : change.curAuditor.order - 1;
  84. }
  85. change.filePermission = true;
  86. } else if (shareIds.indexOf(accountId) !== -1) { // 分享人
  87. if (change.status === status.uncheck) {
  88. throw '您无权查看该数据';
  89. }
  90. // change.readOnly = true;
  91. change.curTimes = change.status === status.back ? change.times - 1 : change.times;
  92. change.curOrder = change.status === status.checked ? _.max(_.map(change.auditors, 'order')) : (change.status !== status.checkNo ? change.curAuditor.order - 1 : 0);
  93. change.filePermission = false;
  94. } else { // 其他不可见
  95. throw '您无权查看该数据';
  96. }
  97. // 调差的readOnly 指表格和页面只能看不能改,和审批无关
  98. change.readOnly = !((change.status === status.uncheck || change.status === status.back) && accountId === change.uid);
  99. this.change = change;
  100. yield next;
  101. } catch (err) {
  102. console.log(err);
  103. // 输出错误到日志
  104. if (err.stack) {
  105. this.logger.error(err);
  106. } else {
  107. this.getLogger('fail').info(JSON.stringify({
  108. error: err,
  109. project: this.session.sessionProject,
  110. user: this.session.sessionUser,
  111. body: this.session.body,
  112. }));
  113. }
  114. // 重定向值标段管理
  115. this.redirect(this.request.headers.referer);
  116. }
  117. };
  118. };